First published: Fri Sep 07 2012(Updated: )
Multiple untrusted search path vulnerabilities in Autodesk AutoCAD 2010 allow local users to gain privileges via a Trojan horse (1) dwmapi.dll or (2) IBFS32.DLL file in the current working directory, as demonstrated by a directory that contains a .dwg file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
AutoCAD | =2010 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-5241 is considered a high-severity vulnerability due to its potential for privilege escalation.
To fix CVE-2010-5241, ensure that untrusted paths are secured and avoid executing files from unverified directories.
CVE-2010-5241 affects local users of Autodesk AutoCAD 2010 who can manipulate the current working directory.
CVE-2010-5241 allows local users to execute a Trojan horse DLL, potentially leading to privilege escalation.
CVE-2010-5241 cannot be exploited remotely as it requires local access to the system.